cosmos-victory[.]pages[.]dev
“Cosmos Explorer Demo”
Resumen de las pruebas
This domain is flagged as a high-risk crypto wallet drainer phishing site targeting users of the Cosmos blockchain ecosystem. Analysis indicates the page masquerades as a legitimate "Cosmos Explorer Demo" to trick victims into connecting their wallets, enabling unauthorized fund transfers through malicious smart contract interactions. The threat type is specifically classified as a cryptocurrency drainer, designed to siphon assets from compromised wallets without user consent. Infrastructure analysis reveals the domain cosmos-victory.pages.dev was registered on January 27, 2024, through Cloudflare, Inc., and currently resolves to the IP address 172.66.45.48, hosted on Cloudflare’s network (AS13335). The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of phishing sites leveraging legitimate CDN infrastructure. Detection metrics show 1 out of 95 security vendors on VirusTotal have flagged the domain as malicious, while it appears on one additional security blocklist, specifically PhishDestroy. Despite minimal detection coverage, the domain remains active and operational, posing an ongoing risk to unsuspecting users. Mitigation against this crypto wallet drainer requires immediate action from both users and security teams. Users should avoid interacting with the domain, revoke any connected wallet permissions, and verify all transaction requests through official blockchain explorers. Security teams are advised to block the domain and its resolving IP (172.66.45.48) at the network level, monitor for related phishing infrastructure, and alert users to the specific threat of Cosmos-themed wallet drainers. Given the domain’s recent registration and low detection rate, heightened vigilance is recommended for similar Cosmos-branded phishing attempts.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 12/08/2026
10 fuentes externas supervisadas Sin coincidencias
Tecnologías
3 tecnologías identificadas con alta confianza
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.